Doug, I looked at that Coldcuts code you mentioned, but I have no clue where in my code to put it! I've tried several things but keep getting errors - VALUE is not a valid parameter, among others. Where would you suggest I place that code? Thank you for your help. :)
We don't want to annoy people, but we want to give our new customers a sense of security. Irritating, but strangely comforting, as George said. :) I'm trying to find a happy balance between the two sides - perhaps 4 attempts to log in and then a 10-minute lockout, after which they can try again?
I also realize it isn't foolproof - and that most computer-savvy people can just delete the cookies and move on. But we still want to put some sort of security in place.
session.times_logged_on seems like a good option - can someone direct me as to where in my code I should put this stuff? I have two login pages - login.cfm (the page where you enter your username and password) and login_validate.cfm (where the user info is validated).
Thank you!!!
Christy
:)
[Todays Threads] [This Message] [Subscription] [Fast Unsubscribe] [User Settings] [Donations and Support]

